← Back to CVE List

CVE-2022-45419

Published: 2022-12-22T20:15Z
Last Modified: 2025-04-15T15:16Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
If the user added a security exception for an invalid TLS certificate, opened an ongoing TLS connection with a server that used that certificate, and then deleted the exception, Firefox would have kept the connection alive, making it seem like the certificate was still trusted. This vulnerability affects Firefox < 107. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt